TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

What Is Cross-Site Scripting?

2020-04-17 · Read original ↗

ATT&CK techniques detected

4 predictions
T1185Browser Session Hijacking
56%
"victim. the attacker doesn ’ t need to use any tactics to trick or deceive the user. reflected xss attacks reflected xss attacks ( also known as non - persistent ) generally occur in websites that mirror information back to the user, for example, the results of a search query, or…"
T1539Steal Web Session Cookie
53%
"victim. the attacker doesn ’ t need to use any tactics to trick or deceive the user. reflected xss attacks reflected xss attacks ( also known as non - persistent ) generally occur in websites that mirror information back to the user, for example, the results of a search query, or…"
T1557Adversary-in-the-Middle
32%
"victim. the attacker doesn ’ t need to use any tactics to trick or deceive the user. reflected xss attacks reflected xss attacks ( also known as non - persistent ) generally occur in websites that mirror information back to the user, for example, the results of a search query, or…"
T1566.002Spearphishing Link
32%
"victim. the attacker doesn ’ t need to use any tactics to trick or deceive the user. reflected xss attacks reflected xss attacks ( also known as non - persistent ) generally occur in websites that mirror information back to the user, for example, the results of a search query, or…"

Summary

Learn about cross-site scripting (XSS), how it works, and how to protect against it.